Critical flaw in NVIDIA Container Toolkit allows full host takeover
ID: 1bbe01a2-d7ce-5ecb-ad40-aee9fc35befc
STIX ID: report--1bbe01a2-d7ce-5ecb-ad40-aee9fc35befc
Feed Name: Bleeping Computer
Threat Score
**Critical NVIDIA Container Toolkit vulnerability (CVE-2024-0132)** — A container-escape flaw in NVIDIA Container Toolkit and GPU Operator (affecting Toolkit ≤1.16.1 and GPU Operator ≤24.6.1) can allow a malicious container to mount writable host resources (e.g., Unix sockets) and achieve full host takeover; vendors released patches (1.16.2 / 24.6.2) and researchers have withheld technical exploit details to allow mitigation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
